Owner's Manual

Chapter 17. Security | 479
NETGEAR 8800 User Manual
RADIUS Server Configuration Guidelines
The RADIUS server is introduced in Configuring the RADIUS Client on page 475. This
section describes the following:
Configuring User Authentication (Users File) on page 479
Configuring the Dictionary File on page 489
Configuring Command Authorization (RADIUS Profiles) on page 489
Additional RADIUS Configuration Examples on page 492
Implementation Notes for Specific RADIUS Servers on page 496
Setting Up Open LDAP on page 498
Note: For information on how to use and configure your RADIUS server,
see the documentation that came with your RADIUS server.
Configuring User Authentication (Users File)
User authentication is configured in the users file on a FreeRADIUS server. Other RADIUS
servers might use a different name and a different syntax for configuration, but the basic
components of the users file and user authentication are the same.
For NETGEAR switches, there are three types of users file entries:
Session management entries
Network login user entries
Network login MAC address entries
Note: The “users” file is case-sensitive, and punctuation is very important
for FreeRADIUS.
The following sections describe the users file entries and some of the attributes they contain:
Session Management Entries on page 479
Network Login User Entries on page 480
Network Login MAC Address Entries on page 480
Standard RADIUS Attributes Used by NETGEAR Switches on page 481
NETGEAR VSAs on page 483
Session Management Entries
The following is an example of a session management entry: